Want more timely Centmin Mod News Updates?
Become a Member

Wordpress Whitelist file

Discussion in 'Blogs & CMS usage' started by Max, Feb 22, 2018.

  1. Max

    Max Member

    72
    4
    8
    Feb 17, 2018
    Ratings:
    +7
    Local Time:
    9:12 AM
    Hello
    how can i whitelist this file ?
    /wp-content/themes/pro/cornerstone/assets/dist-app/js/cs-vendor.js?ver=2.1.7

    Regards

    Max
     
  2. eva2000

    eva2000 Administrator Staff Member

    37,233
    8,134
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +12,523
    Local Time:
    7:12 PM
    Nginx 1.15.x
    MariaDB 5.5/10.x
    Centmin Mod values security and puts additional measures in place so that end users are also mindful of security. So in your case, you might need to whitelist or unblock the WP plugins related to your 403 permission denied messages.

    If you used centmin.sh menu option 22 auto installer Wordpress Nginx Auto Installer, the default wpsecure conf file at /usr/local/nginx/conf/wpsecure_${vhostname}.conf where vhostname is your domain name, blocks php scripts from executing in wp-content for security

    Below links you can see examples of setting up specific wordpress location matches to punch a hole in the wpsecure blocking to whitelist specific php files that need to be able to run.
     
  3. Max

    Max Member

    72
    4
    8
    Feb 17, 2018
    Ratings:
    +7
    Local Time:
    9:12 AM
    i have install with menu 22 , but I don't have that file. /usr/local/nginx/conf/wpsecure_rvlove.co.conf
    i have only files in autoprotect /usr/local/nginx/conf/autoprotect/rvlove.co/autoprotect-rvlove.co.conf

     
  4. eva2000

    eva2000 Administrator Staff Member

    37,233
    8,134
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +12,523
    Local Time:
    7:12 PM
    Nginx 1.15.x
    MariaDB 5.5/10.x
    Let's check. When you create a new nginx vhost domain via centmin.sh menu option 2 or menu option 22 or via /usr/bin/nv cli command line, you will create the Nginx vhost files and directories. You will get an outputted the path location where it will create the domain name's vhost conf file named newdomain.com.conf (and newdomain.com.ssl.conf if you selected yes to self signed SSL)
    • Nginx vhost conf path will be at /usr/local/nginx/conf/conf.d/newdomain.com.conf
    • Nginx HTTP/2 SSL vhost conf path will be at /usr/local/nginx/conf/conf.d/newdomain.com.ssl.conf
    • Nginx Self-Signed SSL Certificate Directory at /usr/local/nginx/conf/ssl/newdomain.com
    • Vhost public web root will be at /home/nginx/domains/newdomain.com/public
    • Vhost log directory will be at /home/nginx/domains/newdomain.com/log
    Please post the contents of /usr/local/nginx/conf/conf.d/newdomain.com.conf and if applicable /usr/local/nginx/conf/conf.d/newdomain.com.ssl.conf wrapped in CODE tags (outlined at How to use forum BBCODE code tags)
     
  5. eva2000

    eva2000 Administrator Staff Member

    37,233
    8,134
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +12,523
    Local Time:
    7:12 PM
    Nginx 1.15.x
    MariaDB 5.5/10.x
    oh should be /usr/local/nginx/conf/wpincludes/wpsecure_${vhostname}.conf
     
  6. Max

    Max Member

    72
    4
    8
    Feb 17, 2018
    Ratings:
    +7
    Local Time:
    9:12 AM
    Code:
    #x# HTTPS-DEFAULT
     server {
      
       server_name rvlove.co www.rvlove.co;
       return 302 https://rvlove.co$request_uri;
       include /usr/local/nginx/conf/staticfiles.conf;
     }
    
    server {
      listen 443 ssl http2;
      server_name rvlove.co www.rvlove.co;
    
      include /usr/local/nginx/conf/ssl/rvlove.co/rvlove.co.crt.key.conf;
      include /usr/local/nginx/conf/ssl_include.conf;
    
      # cloudflare authenticated origin pull cert community.centminmod.com/threads/13847/
      #ssl_client_certificate /usr/local/nginx/conf/ssl/cloudflare/rvlove.co/origin.crt;
      #ssl_verify_client on;
      http2_max_field_size 16k;
      http2_max_header_size 32k;
      # mozilla recommended
      ssl_ciphers ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-AES128-SHA256:ECDHE-RSA-AES128-SHA256:ECDHE-ECDSA-AES128-SHA:ECDHE-RSA-AES256-SHA384:ECDHE-RSA-AES128-SHA:ECDHE-ECDSA-AES256-SHA384:ECDHE-ECDSA-AES256-SHA:ECDHE-RSA-AES256-SHA:DHE-RSA-AES128-SHA256:DHE-RSA-AES128-SHA:DHE-RSA-AES256-SHA256:DHE-RSA-AES256-SHA:ECDHE-ECDSA-DES-CBC3-SHA:ECDHE-RSA-DES-CBC3-SHA:EDH-RSA-DES-CBC3-SHA:AES128-GCM-SHA256:AES256-GCM-SHA384:AES128-SHA256:AES256-SHA256:AES128-SHA:AES256-SHA:DES-CBC3-SHA:!DSS;
      ssl_prefer_server_ciphers   on;
      #add_header Alternate-Protocol  443:npn-spdy/3;
    
      # before enabling HSTS line below read centminmod.com/nginx_domain_dns_setup.html#hsts
      #add_header Strict-Transport-Security "max-age=31536000; includeSubdomains;";
      #add_header X-Frame-Options SAMEORIGIN;
      #add_header X-Xss-Protection "1; mode=block" always;
      #add_header X-Content-Type-Options "nosniff" always;
      #add_header Referrer-Policy "strict-origin-when-cross-origin";
      #spdy_headers_comp 5;
      ssl_buffer_size 1369;
      ssl_session_tickets on;
     
      # enable ocsp stapling
      resolver 8.8.8.8 8.8.4.4 valid=10m;
      resolver_timeout 10s;
      ssl_stapling on;
      ssl_stapling_verify on;
    
    # ngx_pagespeed & ngx_pagespeed handler
    #include /usr/local/nginx/conf/pagespeed.conf;
    #include /usr/local/nginx/conf/pagespeedhandler.conf;
    #include /usr/local/nginx/conf/pagespeedstatslog.conf;
    
      #add_header X-Frame-Options SAMEORIGIN;
      #add_header X-Xss-Protection "1; mode=block" always;
      #add_header X-Content-Type-Options "nosniff" always;
      #add_header Referrer-Policy "strict-origin-when-cross-origin";
    
      # limit_conn limit_per_ip 16;
      # ssi  on;
    
      access_log /home/nginx/domains/rvlove.co/log/access.log combined buffer=256k flush=5m;
      error_log /home/nginx/domains/rvlove.co/log/error.log;
    
      #include /usr/local/nginx/conf/autoprotect/rvlove.co/autoprotect-rvlove.co.conf;
      root /home/nginx/domains/rvlove.co/public;
      # uncomment cloudflare.conf include if using cloudflare for
      # server and/or vhost site
      #include /usr/local/nginx/conf/cloudflare.conf;
      include /usr/local/nginx/conf/503include-main.conf;
    
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpcacheenabler_rvlove.co.conf;
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpsupercache_rvlove.co.conf;
      # https://community.centminmod.com/posts/18828/
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/rediscache_rvlove.co.conf;   
    
      location / {
      include /usr/local/nginx/conf/503include-only.conf;
      #für coment cache
      if_modified_since before;
      
       # Do not allow public access to private cache directory.
       if ($uri ~* /wp\-content/cache/comet\-cache/cache(?:/|$)) {
       return 403;
       }
                
       # Do not allow public access to private cache directory.
       if ($uri ~* /wp\-content/cache/comet\-cache/htmlc/private(?:/|$)) {
       return 403;
       }
                          
      # Enables directory listings when index file not found
      #autoindex  on;
    
      # for wordpress super cache plugin
      #try_files /wp-content/cache/supercache/$http_host/$cache_uri/index.html $uri $uri/ /index.php?q=$uri&$args;
    
      # for wp cache enabler plugin
      #try_files $cache_enabler_uri $uri $uri/ $custom_subdir/index.php?$args; 
    
      # Wordpress Permalinks
      try_files $uri $uri/ /index.php?q=$uri&$args;
    
      # Nginx level redis Wordpress
      # https://community.centminmod.com/posts/18828/
      #try_files $uri $uri/ /index.php?$args;
    
      }
     
    location ~* /(wp-login\.php) {
        limit_req zone=xwplogin burst=1 nodelay;
        #limit_conn xwpconlimit 30;
        auth_basic "Private";
        auth_basic_user_file /home/nginx/domains/rvlove.co/htpasswd_wplogin;   
        include /usr/local/nginx/conf/php-wpsc.conf;
        
        # https://community.centminmod.com/posts/18828/
        #include /usr/local/nginx/conf/php-rediscache.conf;
    }
    
    location ~* /(xmlrpc\.php) {
        limit_req zone=xwprpc burst=45 nodelay;
        #limit_conn xwpconlimit 30;
        include /usr/local/nginx/conf/php-wpsc.conf;
        
        # https://community.centminmod.com/posts/18828/
        #include /usr/local/nginx/conf/php-rediscache.conf;
    }
    
    location ~* /wp-admin/(load-scripts\.php) {
        limit_req zone=xwprpc burst=5 nodelay;
        #limit_conn xwpconlimit 30;
        include /usr/local/nginx/conf/php-wpsc.conf;
        
        # https://community.centminmod.com/posts/18828/
        #include /usr/local/nginx/conf/php-rediscache.conf;
    }
    
    location ~* /wp-admin/(load-styles\.php) {
        limit_req zone=xwprpc burst=5 nodelay;
        #limit_conn xwpconlimit 30;
        include /usr/local/nginx/conf/php-wpsc.conf;
        
        # https://community.centminmod.com/posts/18828/
        #include /usr/local/nginx/conf/php-rediscache.conf;
    }
    
      include /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf;
      include /usr/local/nginx/conf/php-wpsc.conf;
     
      # https://community.centminmod.com/posts/18828/
      #include /usr/local/nginx/conf/php-rediscache.conf;
      include /usr/local/nginx/conf/pre-staticfiles-local-rvlove.co.conf;
      include /usr/local/nginx/conf/pre-staticfiles-global.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      include /usr/local/nginx/conf/drop.conf;
      #include /usr/local/nginx/conf/errorpage.conf;
      include /usr/local/nginx/conf/vts_server.conf;
    }
    
    regards
     
  7. eva2000

    eva2000 Administrator Staff Member

    37,233
    8,134
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +12,523
    Local Time:
    7:12 PM
    Nginx 1.15.x
    MariaDB 5.5/10.x
    whoops should be in /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
     
  8. Max

    Max Member

    72
    4
    8
    Feb 17, 2018
    Ratings:
    +7
    Local Time:
    9:12 AM
    I have tried under "Whitelist Exception for themeco pro" whitlisting

    For the files cs-vendor.js and cs.js for visual composer cornerstone.
    The .js not load. Themeco support asks if the files in whitlisting.

    Regards

    Max


    Code:
    # prevent .zip, .gz, .tar, .bzip2 files from being accessed by default
    # impossible for centmin mod to know which wp backup plugins they installed
    # which may save backups to directories in wp-content/
    # such plugins may deploy .htaccess protection but that isn't supported in
    # nginx, so blocking access to these extensions is a workaround to cover all bases
    
    # prepare for letsencrypt
    # https://community.centminmod.com/posts/17774/
    location ~ /.well-known {
      location ~ /.well-known/acme-challenge/(.*) {
        more_set_headers    "Content-Type: text/plain";
        }
    }
    
    # allow AJAX requests in themes and plugins
    location ~ ^/wp-admin/admin-ajax.php$ { allow all; include /usr/local/nginx/conf/php.conf; }
    
    location ~* ^/(wp-content)/(.*?)\.(zip|gz|tar|bzip2|7z)$ { deny all; }
    
    location ~ ^/wp-content/uploads/sucuri { deny all; }
    
    location ~ ^/wp-content/updraft { deny all; }
    
    # Block nginx-help log from public viewing
    location ~* /wp-content/uploads/nginx-helper/ { deny all; }
    
    location ~ ^/(wp-includes/js/tinymce/wp-tinymce.php) {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Deny access to any files with a .php extension in the uploads directory
    # Works in sub-directory installs and also in multisite network
    location ~* /(?:uploads|files)/.*\.php$ { deny all; }
    
    # Whitelist Exception for https://wordpress.org/plugins/onesignal-free-web-push-notifications//
    location ~ ^/wp-content/plugins/onesignal-free-web-push-notifications/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for themeco pro
    location ~ ^/wp-content/themes/pro/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    
    # Whitelist Exception for https://wordpress.org/plugins/sparkpost/
    location ~ ^/wp-content/plugins/sparkpost/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/sendgrid-email-delivery-simplified/
    location ~ ^/wp-content/plugins/sendgrid-email-delivery-simplified/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/mailgun/
    location ~ ^/wp-content/plugins/mailgun/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/mailjet-for-wordpress/
    location ~ ^/wp-content/plugins/mailjet-for-wordpress/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/easy-wp-smtp/
    location ~ ^/wp-content/plugins/easy-wp-smtp/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/postman-smtp/
    location ~ ^/wp-content/plugins/postman-smtp/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/sendpress/
    location ~ ^/wp-content/plugins/sendpress/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/wp-mail-bank/
    location ~ ^/wp-content/plugins/wp-mail-bank/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/theme-check/
    location ~ ^/wp-content/plugins/theme-check/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/woocommerce/
    location ~ ^/wp-content/plugins/woocommerce/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/woocommerce-csvimport/
    location ~ ^/wp-content/plugins/woocommerce-csvimport/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/advanced-custom-fields/
    location ~ ^/wp-content/plugins/advanced-custom-fields/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/contact-form-7/
    location ~ ^/wp-content/plugins/contact-form-7/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/duplicator/
    location ~ ^/wp-content/plugins/duplicator/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/jetpack/
    location ~ ^/wp-content/plugins/jetpack/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/nextgen-gallery/
    location ~ ^/wp-content/plugins/nextgen-gallery/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/tinymce-advanced/
    location ~ ^/wp-content/plugins/tinymce-advanced/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/updraftplus/
    location ~ ^/wp-content/plugins/updraftplus/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/wordpress-importer/
    location ~ ^/wp-content/plugins/wordpress-importer/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/wordpress-seo/
    location ~ ^/wp-content/plugins/wordpress-seo/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/wpclef/
    location ~ ^/wp-content/plugins/wpclef/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/mailchimp-for-wp/
    location ~ ^/wp-content/plugins/mailchimp-for-wp/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/wp-optimize/
    location ~ ^/wp-content/plugins/wp-optimize/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/si-contact-form/
    location ~ ^/wp-content/plugins/si-contact-form/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/akismet/
    location ~ ^/wp-content/plugins/akismet/ {
      location ~ ^/wp-content/plugins/akismet/(.+/)?(form|akismet)\.(css|js)$ { allow all; }
      location ~ ^/wp-content/plugins/akismet/(.+/)?(.+)\.(png|gif)$ { allow all; }
      location ~* /wp-content/plugins/akismet/akismet/.*\.php$ {
        include /usr/local/nginx/conf/php.conf;
        include /usr/local/nginx/conf/staticfiles.conf;
        # below include file needs to be manually created at that path and to be uncommented
        # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
        # allows you to add commonly shared settings to all wp plugin location matches which
        # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
        #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
        allow 127.0.0.1;
        deny all;
      }
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/bbpress/
    location ~ ^/wp-content/plugins/bbpress/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/buddypress/
    location ~ ^/wp-content/plugins/buddypress/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/all-in-one-seo-pack/
    location ~ ^/wp-content/plugins/all-in-one-seo-pack/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/google-analytics-for-wordpress/
    location ~ ^/wp-content/plugins/google-analytics-for-wordpress/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/regenerate-thumbnails/
    location ~ ^/wp-content/plugins/regenerate-thumbnails/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/wp-pagenavi/
    location ~ ^/wp-content/plugins/wp-pagenavi/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/wordfence/
    location ~ ^/wp-content/plugins/wordfence/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/really-simple-captcha/
    location ~ ^/wp-content/plugins/really-simple-captcha/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/wp-pagenavi/
    location ~ ^/wp-content/plugins/wp-pagenavi/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/ml-slider/
    location ~ ^/wp-content/plugins/ml-slider/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/black-studio-tinymce-widget/
    location ~ ^/wp-content/plugins/black-studio-tinymce-widget/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/disable-comments/
    location ~ ^/wp-content/plugins/disable-comments/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for https://wordpress.org/plugins/better-wp-security/
    location ~ ^/wp-content/plugins/better-wp-security/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for http://wlmsocial.com/
    location ~ ^/wp-content/plugins/wlm-social/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Whitelist Exception for mediagrid timthumb
    location ~ ^/wp-content/plugins/media-grid/classes/ {
      include /usr/local/nginx/conf/php.conf;
      include /usr/local/nginx/conf/staticfiles.conf;
      # below include file needs to be manually created at that path and to be uncommented
      # by removing the hash # in front of below line to take effect. This wpwhitelist_common.conf
      # allows you to add commonly shared settings to all wp plugin location matches which
      # whitelist php processing access at /usr/local/nginx/conf/wpincludes/rvlove.co/wpsecure_rvlove.co.conf
      #include /usr/local/nginx/conf/wpincludes/rvlove.co/wpwhitelist_common.conf;
    }
    
    # Block PHP files in content directory.
    #location ~* /wp-content/.*\.php$ {
    #  deny all;
    #}
    
    # Block PHP files in includes directory.
    #location ~* /wp-includes/.*\.php$ {
    #  deny all;
    #}
    
    # Block PHP files in uploads, content, and includes directory.
    #location ~* /(?:uploads|files|wp-content|wp-includes)/.*\.php$ {
    #  deny all;
    #}
    
    # Make sure files with the following extensions do not get loaded by nginx because nginx would display the source code, and these files can contain PASSWORDS!
    location ~* \.(engine|inc|info|install|make|module|profile|test|po|sh|.*sql|theme|tpl(\.php)?|xtmpl)$|^(\..*|Entries.*|Repository|Root|Tag|Template)$|\.php_
    {
    return 444;
    }
    
    #nocgi
    location ~* \.(pl|cgi|py|sh|lua)$ {
    return 444;
    }
    
    #disallow
    location ~* (w00tw00t) {
    return 444;
    }
    
    location ~* /(\.|wp-config\.php|wp-config\.txt|changelog\.txt|readme\.txt|readme\.html|license\.txt) { deny all; }
    location ~* /(wp-content)/(.*?)\.(zip|gz|tar|bzip2|7z|txt)$ { deny all; }
    
     
  9. eva2000

    eva2000 Administrator Staff Member

    37,233
    8,134
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +12,523
    Local Time:
    7:12 PM
    Nginx 1.15.x
    MariaDB 5.5/10.x
    what output do you get in SSH when you check headers via curl ?
    Code (Text):
    curl -I https://rvlove.co/wp-content/themes/pro/cornerstone/assets/dist-app/js/cs-vendor.js?ver=2.1.7
    

    and
    Code (Text):
    curl -I http://rvlove.co/wp-content/themes/pro/cornerstone/assets/dist-app/js/cs-vendor.js?ver=2.1.7
    
     
  10. Max

    Max Member

    72
    4
    8
    Feb 17, 2018
    Ratings:
    +7
    Local Time:
    9:12 AM
    Code:
                   
    curl -I https://rvlove.co/wp-content/themes/pro/cornerstone/assets/dist-app/js/cs-vendor.js?ver=2.1.7                                                                                                                                       
    HTTP/1.1 200 OK                                                                                                                                                                                                                                                               
    Date: Fri, 23 Feb 2018 09:24:23 GMT                                                                                                                                                                                                                                           
    Content-Type: application/javascript; charset=utf-8                                                                                                                                                                                                                           
    Content-Length: 5540439                                                                                                                                                                                                                                                       
    Last-Modified: Thu, 22 Feb 2018 22:49:22 GMT                                                                                                                                                                                                                                   
    Connection: keep-alive                                                                                                                                                                                                                                                         
    Vary: Accept-Encoding                                                                                                                                                                                                                                                         
    ETag: "5a8f48f2-548a57"                                                                                                                                                                                                                                                       
    Server: nginx centminmod                                                                                                                                                                                                                                                       
    X-Powered-By: centminmod                                                                                                                                                                                                                                                       
    Expires: Sun, 25 Mar 2018 09:24:23 GMT                                                                                                                                                                                                                                         
    Cache-Control: max-age=2592000                                                                                                                                                                                                                                                 
    Access-Control-Allow-Origin: *                                                                                                                                                                                                                                                 
    Cache-Control: public, must-revalidate, proxy-revalidate, immutable, stale-while-revalidate=86400, stale-if-error=604800                                                                                                                                                       
    Accept-Ranges: bytes                                     
                        
    and
    Code:
    [09:24][ curl -I http://rvlove.co/wp-content/themes/pro/cornerstone/assets/dist-app/js/cs-vendor.js?ver=2.1.7
    HTTP/1.1 302 Moved Temporarily
    Date: Fri, 23 Feb 2018 09:26:05 GMT
    Content-Type: text/html
    Content-Length: 154
    Connection: keep-alive
    Location: https://rvlove.co/wp-content/themes/pro/cornerstone/assets/dist-app/js/cs-vendor.js?ver=2.1.7
    Server: nginx centminmod
    X-Powered-By: centminmod
    
     
  11. eva2000

    eva2000 Administrator Staff Member

    37,233
    8,134
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +12,523
    Local Time:
    7:12 PM
    Nginx 1.15.x
    MariaDB 5.5/10.x
    those look good at least from SSH and curl header point of view.

    what do you see in chrome developer tools > network tab when loading the page with the js ?
     
  12. Max

    Max Member

    72
    4
    8
    Feb 17, 2018
    Ratings:
    +7
    Local Time:
    9:12 AM
    [​IMG]

    Firefox and Chrome
     
  13. eva2000

    eva2000 Administrator Staff Member

    37,233
    8,134
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +12,523
    Local Time:
    7:12 PM
    Nginx 1.15.x
    MariaDB 5.5/10.x
    That shows they load fine ? what about on the in the visual composer page and devtools network screenshot ?

    Also check for clues in Nginx access.log and error.log logs located within directory at /home/nginx/domains/yourdomain.com/logs. You can see a full overview at centminmod.com/configfiles.html

    FAQ item 19 has more info on all Centmin Mod relevant log files locations and how to use tail command to view a sample of the entries.
     
  14. Max

    Max Member

    72
    4
    8
    Feb 17, 2018
    Ratings:
    +7
    Local Time:
    9:12 AM
    Hello

    the file is 5.3MB but in firefox developer tools > network 4.88MB
    something is missing. how can that be?

    Regards
     
  15. eva2000

    eva2000 Administrator Staff Member

    37,233
    8,134
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +12,523
    Local Time:
    7:12 PM
    Nginx 1.15.x
    MariaDB 5.5/10.x
    Is it a text based file as compression will make it smaller compared binary based file. But that is one large javascript file - probably the biggest I have ever seen ! You sure it's meant to be that size as will make page load performance pretty poor.
     
  16. Max

    Max Member

    72
    4
    8
    Feb 17, 2018
    Ratings:
    +7
    Local Time:
    9:12 AM
    .js load only in backend

    But missing code
     
  17. eva2000

    eva2000 Administrator Staff Member

    37,233
    8,134
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +12,523
    Local Time:
    7:12 PM
    Nginx 1.15.x
    MariaDB 5.5/10.x
    missing from within the file shown in browser ? tried re-uploading the js files from source download to make sure upload wasn't abruptly terminated half way ?
     
  18. Max

    Max Member

    72
    4
    8
    Feb 17, 2018
    Ratings:
    +7
    Local Time:
    9:12 AM
  19. eva2000

    eva2000 Administrator Staff Member

    37,233
    8,134
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +12,523
    Local Time:
    7:12 PM
    Nginx 1.15.x
    MariaDB 5.5/10.x
    There aren't any such restrictions. So only the browser is showing actually missing code ? you're not judging this by file size but actual code inspection ?

    The curl header check shows correct file size in content length though (Content-Length: 5540439)
    Code (Text):
    curl -I https://rvlove.co/wp-content/themes/pro/cornerstone/assets/dist-app/js/cs-vendor.js?ver=2.1.7
    HTTP/1.1 200 OK
    Date: Fri, 23 Feb 2018 09:24:23 GMT
    Content-Type: application/javascript; charset=utf-8
    Content-Length: 5540439
    Last-Modified: Thu, 22 Feb 2018 22:49:22 GMT
    Connection: keep-alive
    Vary: Accept-Encoding
    ETag: "5a8f48f2-548a57"
    Server: nginx centminmod
    X-Powered-By: centminmod
    Expires: Sun, 25 Mar 2018 09:24:23 GMT
    Cache-Control: max-age=2592000
    Access-Control-Allow-Origin: *
    Cache-Control: public, must-revalidate, proxy-revalidate, immutable, stale-while-revalidate=86400, stale-if-error=604800
    Accept-Ranges: bytes
    
     
  20. Max

    Max Member

    72
    4
    8
    Feb 17, 2018
    Ratings:
    +7
    Local Time:
    9:12 AM
    Yes in browser missing code.
    Code:
    The files are currently ending with
    
    });
    define('cornerstone/initializers/debug
    
        export default DS.Adapter.extend({
          // ...your code here
        });
        ```
     
        Model-specific adapters can be created b
    
    They are incomplete.
    
    https://theme.co/apex/forum/t/pro-editor-load-issue/24153/16
    i have in my browser chrome or firefox that resembles.

    you're not judging this by file size but actual code inspection ? yes

    but why is that phenomenon only since I switched to centmin seven days ago?
    curious or?

    Regards

    Max
     
..